Live data from Hacker News

Viewing profile — averi

averi

HN member
Joined
Thu, Nov 22, 2012, 1:28 PM UTC
HN karma
97
Public activity
11 items

About averi

No profile information was provided.

Recent public activity

  1. comment
    Comment #48022106

    There's a specific reason why the exploit targets a setuid binary, if you poison it in memory it will be executed with the permissions of the user owning it, in this case root, mea…

  2. comment
    Comment #48021767

    You can work with the idea of a DNS whitelist, as in you pass a list of allowed DNS entries via your .gitlab-ci.yml (or separate config) resolution happens and those entries (IPs) …

  3. comment
    Comment #48021723

    Nowhere in the article is mentioned user namespaces completely mitigate the vulnerability, page cache corruption still happens but not being able to obtain root in the target host …

  4. comment
    Comment #48018286

    [flagged]

  5. comment
    Comment #48018232

    [flagged]

  6. comment
    Comment #48018111

    [flagged]

  7. story
  8. story
  9. story
  10. story
  11. story